Sh1n0g1 / z9Links
PowerShell Script Analyzer
☆69Updated last year
Alternatives and similar repositories for z9
Users that are interested in z9 are comparing it to the libraries listed below
Sorting:
- Placeholder for my detection repo and misc detection engineering content☆42Updated last year
- Providing Azure pipelines to create an infrastructure and run Atomic tests.☆52Updated last year
- information about ransomware groups (Ransomware Analysis Notes)☆37Updated last year
- Contains compiled binaries of Volatility☆34Updated last month
- ☆32Updated last year
- Detection rule validation☆41Updated last year
- ☆37Updated last year
- ShellSweeping the evil.☆174Updated 7 months ago
- 🧰 ESXi Testing Tookit is a command-line utility designed to help security teams test ESXi detections.☆76Updated 2 months ago
- ☆81Updated 7 months ago
- MS Graph Commands and Tools for Blue Teamers☆50Updated last year
- A simple tool designed to create Atomic Red Team tests with ease.☆44Updated 4 months ago
- yara detection rules for hunting with the threathunting-keywords project☆124Updated 2 months ago
- A C# based tool for analysing malicious OneNote documents☆114Updated 2 years ago
- A full analysis report detailing as much as possible of a Malware or a Threat☆30Updated last year
- Yara Rules for Modern Malware☆77Updated last year
- ☆67Updated 2 years ago
- Living off the False Positive!☆37Updated 5 months ago
- SubCrawl is a modular framework for discovering open directories, identifying unique content through signatures and organizing the data w…☆52Updated 7 months ago
- This is a simulation of attack by Fancy Bear group (APT28) targeting high-ranking government officials Western Asia and Eastern Europe☆34Updated last year
- CIS Benchmark testing of Windows SIEM configuration☆44Updated 2 years ago
- LOLESXi is a curated compilation of binaries/scripts available in VMware ESXi that are were used to by adversaries in their intrusions. T…☆126Updated 5 months ago
- A small util to brute-force prefetch hashes☆77Updated 3 years ago
- create a "simulated internet" cyber range environment☆17Updated last month
- ☆32Updated 2 years ago
- ☆44Updated 4 months ago
- Active C&C Detector☆155Updated last year
- https://lolad-project.github.io/☆78Updated 6 months ago
- orc2timeline extracts and analyzes artifacts contained in archives generated with DFIR-ORC.exe to create a timeline from them☆33Updated 2 weeks ago
- Some of my rough notes for Docker threat detection☆47Updated last year